Ubuntu 6595-1: PyCryptodome vulnerability
Summary
A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 22.04 LTS Summary: PyCryptodome could be made to expose sensitive information. Software Description: - pycryptodome: Cryptographic Python library Details: It was discovered that PyCryptodome had a timing side-channel when performing OAEP decryption. A remote attacker could possibly use this issue to recover sensitive information.
Update Instructions
The problem can be corrected by updating your system to the following package versions: Ubuntu 22.04 LTS: python3-pycryptodome 3.11.0+dfsg1-3ubuntu0.1 In general, a standard system update will make all the necessary changes.
References
https://ubuntu.com/security/notices/USN-6595-1
CVE-2023-52323
Package Information
https://launchpad.net/ubuntu/+source/pycryptodome/3.11.0+dfsg1-3ubuntu0.1